Skip to main content
04 Our Governance 10 Governance Disclosures and Conclusion
95 / 99
Our governance

Internal controls and assurance: closing the loop

Every section of this chapter has described what the Board, its committees and its executives do. This section describes how the Fund knows it is working – the assurance architecture that tests governance against its own claims.

Internal Audit, established in 1985, continues its evolution into a risk-based, technology-enabled strategic adviser under the Internal Audit Strategy 2025–2030. The combined assurance model – Enterprise Risk Management, Legal and Internal Audit operating as three lines of defence – remains in force for FY2025/26.

Three lines of defence

First line

Second line

Third line

Management controls: Business units; EXCO; Operational management. Day-to-day risk ownership and control implementation.

Oversight functions: Enterprise Risk Management; Legal and Board Affairs; Compliance. Risk frameworks, policies, monitoring, and reporting.

Independent assurance: Internal Audit (reports to ARC); External Audit (KPMG / OAG); independent legal advisers (selected engagements).

Up nextInternal Audit: FY2025/26 focus areas and value delivered

NSSF Integrated Report 2026

Ways to navigate

Choose how you would like to explore the digital publication.

Viewing on a laptop

For the best experience on a laptop, view the report in full screen.

In Chrome, open the three-dot menu at the top right, then select the full-screen icon beside Zoom.

To exit, move your pointer to the top of the screen and select the exit full-screen button.

Contents Overview

Quick access

NSSF Integrated Report 2026

Search the Report

Start typing to search the Integrated Report.

Downloads

Download the full report, complete chapters or selected report sections.

01

Report Overview

02

Our Business

03

Our Strategy

04

Our Governance

05

Our Sustainability

06

Our Performance

No sections selected

Share This Page